SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-88284

MEDIUM · CVSS 4.9 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

GeoVision GV-LPC2211 V1.13 is vulnerable due to inadequate handling of repeated User elements in ONVIF SetUser requests, which can be exploited by an authenticated administrator to overwrite stack control state, potentially leading to a crash of the ONVIF worker. Organizations using this product should prioritize addressing this vulnerability to prevent potential service disruptions and maintain system integrity.

CVE
CVE-2026-88284
Severity
MEDIUM
CVSS
4.9
EPSS
0.25%

Original NVD Description

GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF SetUser requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.